Job Description
<p><p><b>Job Title : </b> Senior Security Analyst.<br/><br/><b>Location</b> Hyderabad & Bangalore.<br/><br/><b>Position Summary : </b><br/><br/>Softcell Global Technologies Pvt.
Ltd.
is seeking a highly skilled Senior Security Analyst with strong offensive security capabilities across the Web, Network, Mobile, Active Directory, OT environments and at least 4-5 years of experience in vulnerability assessment, penetration testing and code review.<br/><br/>The ideal candidate must demonstrate proven hands-on experience, leadership ability, and excellent communication skills to manage project delivery, lead a technical team, and coordinate directly with enterprise clients.<br/><br/>Practical skills are mandatory, and all shortlisted candidates will undergo a practical assessment.<br/><br/><b>Key Responsibilities : </b><br/><br/></p><p>- Conduct in-depth penetration tests on web apps, APIs, networks, cloud, and OT environments.<br/><br/></p><p>- Execute internal infrastructure and Active Directory exploitation using BloodHound, CrackMapExec, Impacket, etc.<br/><br/></p><p>- Perform OT/ICS/SCADA security testing, including assessments of protocols and firmware.<br/><br/></p><p>- Conduct comprehensive manual reviews to identify security flaws, insecure patterns, and logical vulnerabilities SAST and DAST.<br/><br/></p><p>- Chain vulnerabilities to simulate end-to-end real-world attack scenarios and provide POCs.<br/><br/><b>Team Leadership & Client Coordination :</b><br/><br/></p><p>- Lead and mentor junior security analysts during engagements.<br/><br/></p><p>- Act as the technical lead for VAPT projects, ensuring timely delivery and quality assurance.<br/><br/></p><p>- Interface directly with clients to understand requirements, present findings, and suggest remediation strategies.<br/><br/></p><p>- Manage testing schedules, reporting timelines, and escalation workflows.<br/><br/></p><p>- Draft detailed vulnerability reports with actionable remediation.<br/><br/><b>Mandatory Requirements :</b><br/><br/></p><p>- 45 years of hands-on experience in penetration testing and red teaming.<br/><br/></p><p>- Strong grasp of OWASP Top 10, MITRE ATT&CK, and real-world threat simulation.<br/><br/></p><p>- Expertise in AD security, internal lateral movement, and domain privilege escalation.<br/><br/></p><p>- Familiarity with OT security controls, risk frameworks (NIST, IEC 62443), and protocol fuzzing.<br/><br/></p><p>- Scripting proficiency in Python, PowerShell, or Bash.<br/><br/></p><p>- Exposure to tools like Nmap, Wireshark, Burp Suite, Metasploit, BloodHound, SonarQube, Checkmarx, etc.<br/><br/></p><p>- Leadership experience in managing client-facing pentest projects.<br/><br/></p><p>- Bachelors degree in Computer Science, Cybersecurity, or related field.<br/><br/></p><p>- Excellent communication, documentation, and collaboration skills.<br/><br/><b>Additional Details</b><br/><br/></p><p>- Immediate Joiners Preferred.<br/><br/></p><p>- Practical Skills are a Must.<br/><br/></p><p>- Location : Hyderabad and Bangalore (Onsite Only).<br/><br/>Bonus points for published CVEs, bug bounty recognition, open-source security tools, research contributions, or participation in industry events, workshops, and communities.<br/><br/><b>Preferred Certifications :</b><br/><br/></p><p>- OSCP Offensive Security Certified Professional.<br/><br/></p><p>- OSWE Offensive Security Web Expert.<br/><br/></p><p>- CRTP Certified Red Team Professional.<br/><br/></p><p>- CRTE Certified Red Team Expert.<br/><br/></p><p>- CPENT Certified Penetration Testing Professional.<br/><br/></p><p>- CEH Certified Ethical Hacker.<br/><br/></p><p>- eJPT, eCPTX, CBBH, PNPT or equivalent certifications in advanced adversarial simulation.</p><br/></p> (ref:hirist.tech)